Описание
embed.php in Menalto Gallery before 2.2.5 allows remote attackers to obtain the full path via unknown vectors related to "spoofing the remote address."
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.2.4 (включая)
Одно из
cpe:2.3:a:menalto:gallery:*:*:*:*:*:*:*:*
cpe:2.3:a:menalto:gallery:2.1:*:*:*:*:*:*:*
cpe:2.3:a:menalto:gallery:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:menalto:gallery:2.1.2:*:*:*:*:*:*:*
cpe:2.3:a:menalto:gallery:2.2.0:*:*:*:*:*:*:*
cpe:2.3:a:menalto:gallery:2.2.1:*:*:*:*:*:*:*
cpe:2.3:a:menalto:gallery:2.2.2:*:*:*:*:*:*:*
cpe:2.3:a:menalto:gallery:2.2.3:*:*:*:*:*:*:*
EPSS
Процентиль: 66%
0.00516
Низкий
5 Medium
CVSS2
Дефекты
CWE-200
Связанные уязвимости
ubuntu
больше 17 лет назад
embed.php in Menalto Gallery before 2.2.5 allows remote attackers to obtain the full path via unknown vectors related to "spoofing the remote address."
debian
больше 17 лет назад
embed.php in Menalto Gallery before 2.2.5 allows remote attackers to o ...
github
больше 3 лет назад
embed.php in Menalto Gallery before 2.2.5 allows remote attackers to obtain the full path via unknown vectors related to "spoofing the remote address."
EPSS
Процентиль: 66%
0.00516
Низкий
5 Medium
CVSS2
Дефекты
CWE-200